Nagios XI versions prior to 2011R1.9 contain privilege escalation vulnerabilities in the scripts that install or update system crontab entries. Due to time-of-check/time-of-use race conditions and missing synchronization or final-path validation, a local low-privileged user could manipulate filesystem state during crontab installation to influence the files or commands executed with elevated privileges, resulting in execution with higher privileges.
                
            CVSS
                No CVSS.
References
                    Configurations
                    No configuration.
History
                    30 Oct 2025, 22:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-10-30 22:15
Updated : 2025-10-30 22:15
NVD link : CVE-2011-10035
Mitre link : CVE-2011-10035
CVE.ORG link : CVE-2011-10035
JSON object : View
Products Affected
                No product.
CWE
                
                    
                        
                        CWE-367
                        
            Time-of-check Time-of-use (TOCTOU) Race Condition
